Dan @ Wed Mar 25, 2009 7:07 pm wrote:
It seems like alot Luigi Auriemma's proof of concepts are made after the expolite is widely know about. Adimtly he adds alot of knew stuff in his PoC but it is still kind of disappointing that he does not acknowledge any work that came before this. Also i don't see any advisory for the lanschool PoC or any indication he contacted LanSchool to let them know about so i some what question his ethics in this case.
You're right. He should note other work before him at least somewhere on his website. He does seem to carry on like he discovers all the bugs himself. However, I doubt he means to offend anyone by it (I could be wrong, though, I don't really follow this stuff.) Still, he definitely knows what he's doing. I still can't wrap my brain around the packet encryption!